[thesite] UEUE v.0.2 Update

.jeff jeff at members.evolt.org
Mon Nov 5 21:13:08 CST 2001


matt,

><><><><><><><><><><><><><><><><><><><><><><><><><><><><><
> From: Warden, Matt
>
> > dude.  now you're just being an immature twit.
>
> i guess so.
><><><><><><><><><><><><><><><><><><><><><><><><><><><><><

and yet you persist.

><><><><><><><><><><><><><><><><><><><><><><><><><><><><><
> > the live datasource would keep people from doing "bad
> > things", which it will.
>
> ok, so, like i said... go ahead.
><><><><><><><><><><><><><><><><><><><><><><><><><><><><><

i don't need your approval, nor am i asking for it.

><><><><><><><><><><><><><><><><><><><><><><><><><><><><><
> > again, this is *not* security by obscurity.  if that
> > was what we were after we'd simply create a goofy
> > datasource name.  this is real security that requires
> > an amount of specific knowledge.
>
> ... that can quickly and easily become public knowledge.
><><><><><><><><><><><><><><><><><><><><><><><><><><><><><

no kidding which is why we're not suggesting that as a security measure.

><><><><><><><><><><><><><><><><><><><><><><><><><><><><><
> > i'm not going to sit here and argue with you about it
>
> One wonders why you replied, then.
><><><><><><><><><><><><><><><><><><><><><><><><><><><><><

because the points you're trying to make are so ridiculous they have to be
addressed.

you're one of the last ones i would have figured to be on the opposite of
this conversation.

><><><><><><><><><><><><><><><><><><><><><><><><><><><><><
> Like I said before, go for it. Just make sure you get
> teo and feo too.
><><><><><><><><><><><><><><><><><><><><><><><><><><><><><

f.e.o. is your responsibility.  as for t.e.o., it doesn't need to access the
live datasource so no issues there.  as for preparing it to roll-up to
w.e.o. to put this extra bit of security in place, that can come as we
(whoever it is that works on this) have time.  it's really as simple as
doing a search/replace adding the correct attributes to all <cfquery> tags.

later,

.jeff

http://evolt.org/
jeff at members.evolt.org
http://members.evolt.org/jeff/






More information about the thesite mailing list